CVE Vulnerabilities

Multiple Exim Server Vulnerabilities Let Attackers Seize Control of the Server

Security researchers at the National Institute of Standards and Technology (NIST) have uncovered critical security flaws in the Exim mail…

8 months ago

FreePBX Vulnerabilities Enables Authentication Bypass that Leads Remote Code Execution

FreePBX has addressed critical vulnerabilities enabling authentication bypass and remote code execution in its Endpoint Manager module. Discovered by Horizon3.ai…

9 months ago

NVIDIA Merlin Vulnerabilities Let Attackers Execute Malicious Code and Trigger DoS Condition

Security patches for the Merlin framework addressing two high-severity deserialization vulnerabilities. That could allow attackers to execute arbitrary code and…

9 months ago

Windows Remote Access Connection Manager Vulnerabilities Let Attackers Escalate Privileges

Two critical privilege escalation flaws were disclosed in the Windows Remote Access Connection Manager on December 9, 2025. The vulnerabilities,…

9 months ago

Adobe Acrobat Reader Vulnerabilities Let Attackers Execute Arbitrary Code and Bypass Security

Critical security updates for Acrobat and Reader are available, addressing multiple vulnerabilities that could allow attackers to execute arbitrary code and bypass…

9 months ago

Critical WatchGuard Firebox Vulnerabilities Let Attackers Bypass Integrity Checks and Inject Malicious Codes

Critical security alerts have been issued for Firebox firewall devices due to serious ten vulnerabilities. The vulnerabilities in WatchGuard, disclosed…

9 months ago

Splunk Enterprise Vulnerabilities Allow Privilege Escalation Via Incorrect File Permissions

A high-severity vulnerability has been disclosed in Splunk affecting its Enterprise and Universal Forwarder products for Windows, stemming from incorrect…

9 months ago

PickleScan 0-Day Vulnerabilities Enable Arbitrary Code Execution via Malicious PyTorch Models

Multiple critical zero‑day vulnerabilities in PickleScan, a popular open‑source tool used to scan machine learning models for malicious code. PickleScan is…

9 months ago

Multiple Django Vulnerabilities Enables SQL Injection and Denial-of-Service Attacks

The development team has officially released essential security updates to address two significant vulnerabilities found in the popular web framework.…

9 months ago

NVIDIA DGX Spark Vulnerabilities Let Attackers Execute Malicious Code and DoS Attacks

An urgent security update for its DGX Spark AI workstation after discovering 14 vulnerabilities in the system's firmware that could…

9 months ago